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(54) DISCLOSURE KEY PRODUCING METHOD AND DISCLOSURE KEY GENERATING 
SYSTEM 

(57)Abstract: 

PURPOSE: To omit the step for completeness 
confirmation of a disclosure key by adapting a method 
for not conducting the completeness confirmation of a 
disclosure value independently, and conducting the 

completeness confirmation of the disclosure value tx? -«* * 

simultaneously with the authorization of a partner 

terminal. 

CONSTITUTION: A large prime number or the power i i"..^»r 



multiplier of the prime number (q) and the primitive 
element (g) of GF (q) are generated, and the (q) and (g) 
are stored in a modulus storing part 1 1 and a primitive 
element storing part 1 2, respectively. The secret key X 
of a center is determined and stored in a secret key 
storing part 13. and the secret key X of the center is 
inputted to an unidirectional function F:14 to generate an 
expression I. The (q). (g). V of the expression I and a 
disclosure key producing function P used in the 
disclosure key producing step are disclosed to each 
terminal as the disclosure information of the center. The 

terminal (i) notifies the center of the identification information IDi inherent to the terminal (i) 
stored in an identification information storing part 21 through a communication passage 41 for 
claiming the terminal information and claims the issue of the terminal information. The center 
confirms the validity of the terminal (i) and generates a random number Ki by a random number 
producing device 15. inputs this value to the unidirectional function 14 to produce the 
disclosure value of the terminal, and issues it to the terminal through a terminal information 
issuing passage. 
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1. 

(1) ffl^OttJNflf fl^Wf I CD«^<bm 2 tz)« 

Fix iWte* -©IB««X tlKllB-:;^W<tM 
» F CA:^ L^S: t ft 0ffl^« Y - F (X> * 



»FK:A:^L/iift©UJ:^iiy - F (k) 

- £Di((igiix i. ffiiefls 1 (z>aft^o^5;!tf y i. 

«IIB|gft||^^nR S (I A:^ U ^ <!: ft (Z) {b;^it 
x-S (X. y . k. i) 

i odi3^(Di^n«y i«:niR» 1 «iieaf»:^ 
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m i ^isis^na^jftHiEP (TA^ ftom 
Aft 

C - P ( Y , y . i ) 

**7Ctbfci*. l5fB-:*risottM»F i LT. 

v-P (u) - g" Bod q 

iHtt^ttffl # cuttle q ct>:<- -i 7 - 

wie^^i^tu. -fe y ^-®tt««x i» 1 t&ae 

x-S(X. y, k. i) 



»ffl¥ 4-191787 (2) 

- X X y + k X i sod ^ 

i . IRE q ^i^i iV^SEff 1 ©it5fc0 4>RJ 
«y*-<*i:LfcttC-feV^^-®i^MfllilYO-< 

C - P ( Y, y . i ) 

- ( Y") X ( y •) .od q 

v-F (u) - g" BOd q 
**:*-r ^^Mtttttffl # ^-ttE q ^ 7 - 



1I9IB# U. Ill left 1 0«3^0£fnfll y ibff^ 

ftff k toim 

x-S (X. y. k. i) 

- H (y.i) X X + k Bod # 

- h X X > k aod # 

fly 1 odt5tca>«n«li i ^irtBHIkH 

K:AALfci§c»5,n4ffi*«ii*-<*itfc 

ism 1 o«3^o&m«y <ba>ff 

c - p ( y. y , i ) 

- ( V « ** ) X y aod q 

- ( V) X y «od q 

(4> 1 e«o^nK^A^i^T«^-,T. fue 



« X *«ljB-:^iaitiM» F c A:^ b i § ® as;^ 
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ttFtrA;^jL^i:^©a:^«Y- F (x> -b 
F A:^ L^/s <t * y « F (k) 



|Snn¥4-191787 (3> 
x-s<x. y. k. i) 

mem I (Z)«^0&§stf y iivre^ 
mum 1 cD«*;i-^>if3K«*^M««®tea* 

1 oa|39EO^n« y KH IS ^TS 1 (Z) dfi 5^ « » Iff 

C - P ( Y . y , i ) 
(6) »^J«5ie«t©i^Mll^«>'XxX.K:*?v^T. 



v-F (u> — g* ■od Q 

5^o^66{i y ± y ^ ' €0^aLl.fz^»m, 

x-S (X. y. k. i) 
» X X y + k X i Bod # 

«y*-cgiL^iiiK-fe y ^ - (D^mmmy 

C - P ( Y » y . I ) 



( Y ») X < y *) «od q 

*©*> 47ci L/i i * X Iflfi-jnnJliMifeF i L 
ifllBq^aiL. IRIBu ^A:^i^4i5jeg 

v^F (u) - g" nod q 

nSlft U/;: d . HiI B 12 S K ^ ]^«fK S L T x 
ffie#^«&<h Lx i^lEm 1 ©«^©^Mtf y ^filJ 

Bn I om*^<Dm^mm i^^^^n^nttHM 

AJ^L/^ri *C»^nitiS:*tth ix lRlie-fe>^ 
-<Dtt«itx ©iBIix Sflie-fe y - c^lft L/;fL 
ftff k ^Olb 

x-S(X. y. k, i) 

- H (y, i) X X + k nod ^ 

- h X X + k aod ^ 
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iiy titium 1 omMomstmm : ^niegaitH 

C L fc i S C » €. n « tt Afl h t ^ » A: L 

C - P ( Y . y . I ) 

- (Y" «'•'>) X y aodq 

- ( Y») X y aodq 

tli:^ttv-F (X) «^«-r«ttKffl2^nil^« 



»ia¥4-191787 (4) 

an (z>«;^®&n« y mKit 1 oatsKo&n 

3. ««®»a«:K« 

*56W«:. attffi«*t4t*«ll»iT-fe J'^'-*- 
«■ 3^ ® & n II €^ ^ « -r « ^ A •> X 7- ^ tr n 
e«®«« 



mrm^. * -^® T ^ * * 

:^^-®ll«9®A&:»<AS< « « & l> 7 IBiajg 

Ja i: 0 * O: M d « « © ^ ft * y ^ - 36< 



$ nft . 

-^:X(DliXl.yt:«^ttK©*«C^t^Tifi-<ft* 
public key cryptosyitas aBd a sigaator 
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e scheae based on discrete lofari tbss' , I EEE 
Trans, oa IT , vol . IT- 31 . »0 . 4 PP469 ■ 472) C fiF L 
t^. tft^ ^XO'^'Att. • X 7 £/ * y h -fe* 

^ - M y ^ x"9'-^*-r•A-D^'»;r 

(Betb: * Efficient zero- know I ed(e ide 
otificatioR acheae for aaart cards * Lect 
Notes Coapat Sci VOL330 P77'84 *88) 

i^^m 1 ] 

4)««fliiio%^T. 5)&iniicz>%^ttstso«x 



»IB¥4-191787 (5) 

1) i/X-r-i»tD«»36 

GF<q)©i[»jCft^K3r 

V-f» aodq (1.1) 
CCTaodqttq T » U i # O « it © » tfi ^ 

yi.f-* aodq (K2) 



ai*o4^W««i^ LT. ^y^r-^mimL. -try 

fl(ti.Qi) 

ti^C*i aodq (1.3) 
«i«(yi::IDi'Xx to/hi aed^ (1.4) (' - 



5)^BBil©5E^1${te 

(i)«3^j ^^m^itD^mmn 
(yi.iDi) t± y ^ -9tHom^mmiti.u\)Ht 

(yi.IDl) i * -»ff®»*fllll(li.oi)*< 
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(1) #4Ij^3^#&0|B«IIk <h&ntt]ri«^« 

(2) *«*tt. «^ai*©4^IBfll« (yi.lDi) 
<3) ^^ttO«B$n:fc4:^BBIi*fflv^-C««© 
(4) &Bntto^^tt{tQg(3. »odq±a>^»9lfcM 

'(oii^wmmts m^(x>^^mm im^ommm 



1iH¥4-191787 ( 6) 

1) v-Xir x^lDMRS. 2)a65feflHI©«lt«*. 3) 

7. -r y 7* T 4 * 

1) '>X-r i^fflWR^ 

y - C' Mod q (2, 1> 

2) ai 3^ It II tt>%fr«« 



(3)x^:^■7i^»:fei^*ffi^^T. ai3{T|ni«IDl 

yi-B ' ki Modq (2.2) 
«i.(IDi-X X yi)/lci mo4^ (2.3) 

ttK:35*<£> * «; LTiUff 
4)ffi^ai3^oS& 

(2]ai5^j tt3|tt»-»y^: (IDl.yi) *ffl<^^T 
pi -*Y'^ »odq (2.4) 

Cl-yl*' ■odq (2.S) 



C2-EXxi +Bi Mod # (2.6) 

[61 4l5|ci Et. V -ExIDi kod^ ^ ^ 
^> « xy«« xci - g * aod q (2.7) 

itott^c. «*ai5fe36<. **i::«5fei T**i: 

c oit*«K: ^tnfcf . 13^0(1) -(4) c?o*-r* 

(2) »ii3^«:. -is -o^mmmtm^mi^ 
o^Mflm (^m«yi^ais(iiiiiDi ) ^At^r. 

(3) A©&SBI|«I*» 

(4) «fi^esi#tr . «odq±(D-^§ mMiS^^RJI^ 



3 ISff -?d^«:6^«>£. 



»IB¥4-191787 (7) 
ttH»FK:A;^L/i<t#©iti:^tf Y - F (x) 

-:«ri^ttB8«FCA;^L^^d®a5A«y - f 

IKl(Z>4l3fe;^. 9(2O0i^c. di^ottJ^dlK^ 
1 ^«5^©^6B«r 'tl£i£'r'&«^&Sflill«lcili 



HI 2 o«^3!i<. * y -©i^ISH»« Y i . » 1 
'i^Mtt^iftntt P c A:^ L 3^ <b ^ © c 

iBieqt^il-v iWEu*A:^if4,85iae 

V - g " Hod q 
*m^t-*-*«*H»F q®:*--f7-H« 
m^^mtL^. -fc -©IBttttX 1 ©dt3^ 

(his 1 (bm^ommmm i ©a<b©iQ 

x«Xxy+kxl aod # 

1l|||Y©^d!ijH^«^. m 1 ©«5^©li9ifl||i 
i«^«^t.^«liSa(l(Z>4l^©d^M«y©^» 



C - ( Y») X < y M Mod q 

« ai ;^ f ^ ^ I» It ^ 1ft U 01 P ^ « ;L ^ © 7 jb ^ . 

^fc. it5fctf ««It* - 75<v » 1 ©a»^o 
^l»«y tm 1 ©«3^©liSi|fflfl t 

n/iM»HK:A^L/ii:^^<c:»^>n4as^« h 
-t V ^ - ©ttffiBX ©tti . -fe y ^ - ©*jft L/i 
imclik ^©la 

K - H (y,i) X X + k Mod # 

- h X X + k Bod # 

*lRHE»ttH k: A:^ Lfc i §c»^»*t*m:^«h 

«:-4SiUfc-fey^-©^Bafl|||Y©-<§itf(li5^ 

aa:. «re» i ©«^©^BH«y <b©ff 

C - (Y"*" *M X y Modq 

- { Y^) X y aod q 

^ di5 A r « ^BBfl^Jftntt P « « ;l 4> © -7 « « . 
« m 1 ©«5t:6«. «ftK^&n«<h LT. Hi 

©«5jEoiB«« X *-:«riHittM» F c A:^ L i 
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©«*o4^MB c cbMie V *it« -Jar**- 
mf^m^ommmzjJiBmomjiLtzji^ 



» IB ¥4-191787 (8) 

n tit m 

1) C/X-J'i.SJlBRI^:^^ V 2)91 



q) ©KMTCf q^ll©^«M«tCs 

AMftOftMLx u©-:3?rBottW»FK:* y - 

Y - F (I) -od q (1) 

061141^^ Lx*m^iz^nt 
iffl«r©»siiwffiD 1 ^4i©4i^«4i©tt^ffl© 

Klf'^li^t'^. ^xJb. 41©fli^1KII©»4t^© 



3)«*flHi«fTX-5^ y r 
m^i ^&^^»©a•*««»^f ©i»3Rt::« CT. -b 

y 5^ - tt:fll5^«ll©«^t*^T©^i«Tlf ^ • 
(1)* y^ -tt«5lcl ©jEStt^Stttt* 
l2]15©ilft^«!fi«*ffiC^TSlBtkl*»ar 

1 3 ) a » k i * 1 4 © - :«r iio ft H » A ;^ i> T at 3fe 

yi-«** Modq (2) 
^^itfcL. y ^ - ©ti(SttX^«3^l ©^60 
«yi chilftki <ha|3^l ©tt8lfl|«IDi«16©m 1 
©IBflrtt^jAHttS C A;^LT»^©tte« 

xi-S (X.yi.ki, IDi) -Xxyi+kiXiDi 

Bod # (3) 

^^JAU^ 42©9t^1illftfT»aftB^il^Tfl| 

Ml ftHfefrr*. c c: -C # It q ©* ^ 7 -Mitit 
42©«3^1*ll»ffffiiltt»tt. 
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i ft C -« /; Htf $ ^ $ V r T * -fe • 

Pi*P (Y.yi.IOi) » (Y'^') X (yi .odq 

(4) 



(1) S.fl[Ai 

[2] cii^i^i-^. 
[3} «3^i tt:. MI^©eSi|xi^fflc>T. 

jc« - (Pi«) XCl aodq 

<l) -fe:/^'-*^. *»^K:ttLT. *«i5^©te 



?JB¥ 4-191787 (9) 
C T $ tB^ee jiriS: ^ t t tr ^ 

X V - l- D y X ^ X' T K ■»»■ i. 
i * 7 »; -bM » • 3. - D ^ r hB7(D.Cba 

u«:*Aii improved protocol for deaons tra t i nf p 
ossessios of discrete logarithaa aad soae ce 
DeraliiatioosVEUROCRYPTa?). t^ttx "T 

it y M xi / u t n^~y v ^ - 

:> * 1988<K. Kizaki : 'It oote on xerp-knoMle 
dge proof for the discrete logaritha proble 

■*.Tbe Trana.of the 1 E]CE, VoU £71 . No. I . Jaou 
ary.l988)C£^LC>. 



(2) * --©itM««vtffi:^ai 
^©d:^M1ll«6 (^Rffiyi^fliSllllfeiDi) ^^ix 

ffi^ai5t©^«iiPi^^«r 

(3) ^«$nfc4:^5B«Pi*fflv^T. tt*©iift 

(4) &Bntt©^j£C£h^«i:>X^&t3ri(;t. aodq 

Vi-f"* Bodq 

Cfc r>T^WII©3E^tt^JHii{:ftBr 4 zth 

xi-S (X.yi.ki. IDS ) * If x ID I + y i x k i 

■od # 
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Pi-P (V.yi.IDi) X (yi'O iiodq 



« 13 ^ 4-191787 (10) 

[2]± y ^ - (ommmt ^s^Et-- iso^ffiti 

Y * F (X) - c* nod q (5) 
(31 V •> i KUlhashC i^Kiri. 

2)3i*flt«»«x^ V r 
«5^i ti2loaiSi!fll«tt>rt»t3tejrt$n/i«^ 

ilftR^at^T. -fe y ^ - il*Q - ai^WII® 

*fT*»5^1-*- ^^^^ 41©3Sl*1i«<&»«ffi© 



( 3 ) a ft k i * 1 4 CD - * fti tt H » k: A * 3<B ^ 

y i - aodq (6) 

*^rttt-. ai3iifli«iDiia»kii-fe y 

xi-S (X,yi.ki. IDi) - basb ( 1 Di , y i ) x X + 

ki aod # 
«Xxhi+ki Bod ^ 
(7) 

tidtU. 420a3feitli»tTfflil«tt*ii 



]il±.<D7^'r ■vr«dtt^;^<C®>:^-ri*t::flCAr* 
(hit: -Hfc'itllfT 

JC5fei «s 3t\>fti^tz <IDi,yi) 32©»2 
©^TO«^»fiI8I» P k: A:^ t^T. «^i©^&W« 

Pi»P (yi.IDi.Y) - Y"**" yi -odq 

= (Y^*) X yi -odq (8^ 

©■&. IS 1 ©llll«<t »:©7.-rv7'iL 



-914- 



CD - (4) ©4»«tzj!ni^. (5) ^ra* 

CrftSr ^ C t r § ^. 

xi = S (X.yi.ki. IDi) - X - has h ( 1 D i . y i ) 

xki nod ^ 
- X + bi K ki Mod t 



. ?$ra ¥4-191787 (11) 

- Y X (yi»"*) aodq 

jfej^^x y ^ - ©^Miili i . *a^«5^0^IS5fl! 
^t^ni£. ffi^Kiffv B&^^iifS. «tg/ii*©-J^M 

««^S7'oh3iu^ligi^^-5,iStr. -t©» 



^ti^m&^^^m^<^m^Hfzicij - Knti*©«* 
»ista:*i6?«©«i ©nitWfriJ; ^«^^:^ 

> :^'r ^(DmtSim. IP 2 Bltt:*3feH« ©m 1 © 

nnmcomA^ iz) . 9^ 4 git£:^%^©^ 2 © 
mt^mc!>m^mi (i) . m 5 (siu::^^!^©?^ 2 © 

1ltfcff©<ifl)ia (2) . 1^ 6 att{£^©^f«Ci: 
30-» 2 ©«5fe. 40- -fey^-'illitrailftR. 

50-91 2 ©afi^ • K 2 ©aa^riSiiftft . 

Mtt. 31-9i 1 ©i£^MIIt^^«ftx 12-M^7cl& 
lA^. 32-ff 2 ©^ffifit^^98». 13-li££l»« 



41'"«5fefltlB5&lT«^fflil«». 14 
©^^tt^J^IS^Itt. 17-% 2 ©t0S8^jS!^MSi^^ 
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SI 
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«n ¥4-191787 (13) 
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< Uftrr f - > 



I El" B 
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EI 



t * lod q 6 
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1 1 
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1 1 « X X kt -I- ftoit # 
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